TL;DR
Senior Staff Analyst (Cybersecurity): Defining, developing, and implementing a Governance, Risk, and Compliance framework for enterprise and product verticals with an accent on aligning security, privacy, regulatory, and risk management initiatives. Focus on operationalizing risk assessment, ensuring compliance with standards like ISO, NIST, SOC2, CCPA, and GDPR, and leading internal and external audit activities.
Location: Remote Canada
Salary: $128,000–$190,000 CAD
Company
hirify.global is a non-profit-backed technology company known for pioneering brands like Firefox, focusing on an internet built for people and privacy.
What you will do
- Develop and maintain a comprehensive GRC strategy and roadmap aligned with business objectives.
- Lead the creation and enforcement of security standards, policies, controls, audits, and reporting.
- Develop and operationalize a risk assessment and management framework on a periodic basis.
- Ensure compliance with various regulatory standards and frameworks (ISO, NIST, SOC2, CCPA, GDPR).
- Lead internal and external audit activities, including tracking and resolving deficiencies.
- Partner closely with Legal, IT, Finance, and Security to align on the GRC program.
Requirements
- 10+ years of progressive experience in developing and delivering an integrated GRC framework.
- Strong understanding and deep knowledge of regulatory frameworks, processes, and tools related to GRC.
- Experience leading and delivering cross-functional requirements for product & enterprise teams.
- Relevant industry certifications (CISA, CISSP, CISM, CRISC).
- Hands-on understanding of using various technology and tools (SIEM, BI Tools).
- Ability to develop Root Cause Analysis (RCA) and remediation plans.
Culture & Benefits
- Generous performance-based bonus plans.
- Rich medical, dental, and vision coverage.
- Generous retirement contributions with 100% immediate vesting.
- Quarterly all-company wellness days.
- Country-specific holidays plus a day off for your birthday.
- One-time home office stipend and annual professional development budget.
- Considerable paid parental leave and employee referral bonus program.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →